RSS
Security Operations
Threat Research
Black Basta
featured
Fin7
Java malware
legitimate service abuse
Microsoft Office 365
python malware
Quick Assist
remote machine management
Sophos X-Ops
STAC5143
stac5777
Teams
Sophos MDR tracks two ransomware campaigns using “email bombing,” Microsoft Teams “vishing”
January 21, 2025
CloudFlare
FlowerStorm
Phishing
phishing-as-a-service
Rockstar
Rockstar2FA
Sophos MDR
Phishing platform Rockstar 2FA trips, and “FlowerStorm” picks up the pieces
December 19, 2024
Atera
MDR
MuddyWater
RMM
STAC 1171
TA450
Sophos MDR blocks and tracks activity from probable Iranian state actor “MuddyWater”
November 20, 2024
exfiltration
Google Forms
Telegram
TLS
Phishing and malware actors abuse Google Forms for credentials, data exfiltration
September 23, 2021